76/100 SECURITY SCORE

Certificate Information

Subject
CN=milwaukeetool.uk
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 17, 2026
Valid Until
August 15, 2026 66 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
21:E8:3E:D1:97:00:D6:8D:89:7A:1B:BC:1E:D3:97:4E:7E:AC:14:56:A6:B1:2E:AE:C6:61:0F:FC:13:BE:4B:9B
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
ingenitive.info *.ingenitive.info *.api.ingenitive.info *.backup.ingenitive.info *.bk.ingenitive.info *.dashboard.ingenitive.info *.dev.ingenitive.info *.mail.ingenitive.info *.mailer.ingenitive.info *.marketing.ingenitive.info *.secure.ingenitive.info *.staging.ingenitive.info *.szhuzv2.ingenitive.info *.v1.ingenitive.info *.v2.ingenitive.info

Other domains in certificate

*.api.banyubalap.net banyubalap.net *.banyubalap.net *.help.banyubalap.net *.m.banyubalap.net *.webmail.banyubalap.net *.ww16.banyubalap.net *.ww25.banyubalap.net *.ww38.banyubalap.net
*.admin.carolgpeckelorg.org *.api.carolgpeckelorg.org *.app.carolgpeckelorg.org *.assets.carolgpeckelorg.org carolgpeckelorg.org *.carolgpeckelorg.org *.demo.carolgpeckelorg.org *.dev.carolgpeckelorg.org *.test.carolgpeckelorg.org *.u9scho.carolgpeckelorg.org
dotmovies.live *.dotmovies.live
*.adblock.expensivecarsrates.site *.adg.expensivecarsrates.site *.adguard.expensivecarsrates.site *.adguard01.expensivecarsrates.site *.adguard1.expensivecarsrates.site *.admin.expensivecarsrates.site *.agh.expensivecarsrates.site *.bot.expensivecarsrates.site *.ci.expensivecarsrates.site *.dash.expensivecarsrates.site *.dns.expensivecarsrates.site *.dns1.expensivecarsrates.site *.doh.expensivecarsrates.site *.doh1.expensivecarsrates.site expensivecarsrates.site *.expensivecarsrates.site *.mbcosanalytic.expensivecarsrates.site *.notexistsadguard01.expensivecarsrates.site *.ns.expensivecarsrates.site *.ns1.expensivecarsrates.site *.preprod-insight.expensivecarsrates.site *.qa.expensivecarsrates.site *.report.expensivecarsrates.site *.superset.expensivecarsrates.site *.test.expensivecarsrates.site *.visual.expensivecarsrates.site *.www.expensivecarsrates.site
*.h5.in77vip.com in77vip.com *.in77vip.com *.store.in77vip.com
*.co.milwaukeetool.uk milwaukeetool.uk *.milwaukeetool.uk *.random.milwaukeetool.uk *.uk.milwaukeetool.uk *.ww25.milwaukeetool.uk
northwestapharmacycanada.online *.northwestapharmacycanada.online *.ww38.northwestapharmacycanada.online
*.cdn.otecms.net *.login.otecms.net *.m.otecms.net otecms.net *.otecms.net *.staging.otecms.net *.test.otecms.net *.testing.otecms.net
*.samara.xn--zfv30q2a6941b.com *.sitemap.xn--zfv30q2a6941b.com *.wildcard.xn--zfv30q2a6941b.com xn--zfv30q2a6941b.com *.xn--zfv30q2a6941b.com